
CiscoCertified CyberOps Associate
Domain 1Objective 4
1.4 Compare Security Concepts 200-201 Practice Questions (Page 4)
Part of the 1.0 Security Concepts domain, which accounts for 20% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)
40questions here
8free pages
7concepts
20%of the exam
Questions 16–20
- 16
A risk assessment team is documenting the steps they followed. They started by listing all critical assets, then identified potential threats such as malware and insider threats, and then analyzed the vulnerabilities in each asset. What is the next step in the risk assessment process?
Select an answer first - 17
A financial services company has identified a critical vulnerability in its customer-facing web application. The vulnerability could allow an attacker to access customer financial data. The company has the following constraints: (1) the application cannot be taken offline for more than 4 hours, (2) the security team has a budget of $100,000, and (3) the company's risk tolerance is low. The estimated cost of a data breach is $5 million. The security team has three options: (A) patch the vulnerability immediately, which requires 6 hours of downtime and costs $20,000; (B) deploy a WAF to mitigate the vulnerability, which requires 2 hours of downtime and costs $80,000; (C) accept the risk and monitor the application. Which option best balances the constraints and the company's risk tolerance?
Select an answer first - 18
A company's web server is running an outdated version of Apache that has a known remote code execution vulnerability. An attacker exploits this vulnerability to install a backdoor. In this scenario, what is the vulnerability?
Select an answer first - 19
A manufacturing company has a legacy industrial control system (ICS) that cannot be patched because it would disrupt production. A risk assessment shows that a cyberattack on the ICS could cause a plant shutdown. The company decides to implement network segmentation and monitoring to reduce the likelihood of an attack reaching the ICS. This is an example of which risk treatment strategy?
Select an answer first - 20
A company is conducting a risk assessment for its new cloud-based customer relationship management (CRM) system. The assessment team has identified the CRM as a critical asset, identified that a data breach could occur due to a misconfigured cloud storage bucket, and determined that the likelihood is medium and the impact is high. The company's risk appetite is low, meaning it cannot accept high-impact risks. Which risk treatment strategy should the company choose?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.